Skip to main content
تشغيل أي مهارة في Manus
بنقرة واحدة
thau0x01
ملف منشئ GitHub

thau0x01

عرض على مستوى المستودعات لـ 18 skills مجمعة عبر 1 مستودعات GitHub.

skills مجمعة
18
مستودعات
1
محدث
2026-06-09
خريطة المستودعات

أين توجد skills

أهم المستودعات حسب عدد skills المجمعة، مع حصتها من كتالوج هذا المنشئ وانتشارها المهني.

مستكشف المستودعات

المستودعات و skills الممثلة

engagement-management
محللو أمن المعلومات

Engagement-lifecycle management — pre-engagement scoping, ROE drafting, authorisation letters, threat modeling, CVSS scoring, finding write-up, executive summary, technical report, retest scoping, remediation validation. Use when the user mentions scope a pentest, ROE template, rules of engagement, get-out-of-jail letter, authorisation letter, scope statement, communications plan, blackout window, escalation matrix, threat modeling, STRIDE, PASTA, attack tree, threat actor profile, CVSS scoring, finding template, executive summary, technical report, retest, remediation validation, regression coverage, engagement kickoff, or evidence chain of custody.

2026-06-09
engagement-retest
محللو أمن المعلومات

Plan and execute a pentest retest — re-scope, re-execute the validation steps from prior findings, detect regressions, and write the retest report. Use when the user mentions retest, re-test, remediation validation, regression coverage, "verify the fixes", "validate remediation", retest scoping, retest report, posture trajectory, or compares "before vs after" findings.

2026-06-09
engagement-scoping
محللو أمن المعلومات

Drive the pre-engagement scoping conversation and produce the scope statement, Rules of Engagement, authorisation letter, and communications plan. Use when the user mentions kickoff, scoping a pentest, drafting ROE, rules of engagement, scope statement, authorisation letter, get-out-of-jail letter, communications plan, blackout window, escalation matrix, ROE drift, third-party hosting carve-out, social-engineering allowance, time-window restrictions, or evidence-handling rules.

2026-06-09
pentest-active-directory
محللو أمن المعلومات

Active Directory and hybrid Entra ID penetration testing. Use when the user mentions BloodHound, SharpHound, SOAPHound, AzureHound, RustHound, Kerberoast, AS-REP roast, Golden/Silver/Diamond/Sapphire ticket, DCSync, DCShadow, NTLM relay, ntlmrelayx, ADCS ESC1-ESC15+, EKUwu, Certipy, ACL abuse (GenericAll/WriteDACL/WriteOwner/shadow credentials), GPO abuse, NoPac, ZeroLogon, PetitPotam, DFSCoerce, PrinterBug, krbrelayup, AAD Connect, MSOL_, Pass-Through Auth, Seamless SSO, AdminSDHolder, SID History, krbtgt, or any "domain compromise" task.

2026-06-09
pentest-ai-llm
محللو أمن المعلومات

LLM-backed application, AI agent, and AI/ML supply-chain penetration testing. Use when the user mentions LLM pentest, AI red team, prompt injection (direct or indirect), jailbreak, DAN, Crescendo, GCG, many-shot jailbreak, system prompt leakage, RAG poisoning, embedding poisoning/inversion, vector DB attack, MCP / Model Context Protocol abuse, tool poisoning, agent excessive agency, function-call abuse, output handling chains (XSS/SSRF/SQLi via LLM output), training-data extraction, membership inference, modelscan/picklescan, Hugging Face poisoned model, garak, PyRIT, promptmap, Augustus, Spikee, OWASP LLM01-LLM10, MITRE ATLAS, or unbounded consumption / cost amplification.

2026-06-09
pentest-cheatsheet
محللو أمن المعلومات

Surface a one-page pentest cheatsheet for fast field recall. Use when the user asks for a "quick command", "cheatsheet", "one-liner", "what's the syntax for X", "remind me how to do Y", "give me the recon snippets", "AD cheatsheet", "lateral-movement one-liners", "AWS quick commands", "Azure quick commands", "mobile cheatsheet", "initial access cheatsheet", or any request that wants tools/commands without methodology overhead.

2026-06-09
pentest-checklist-lookup
محللو أمن المعلومات

Resolve a stable pentest-template checklist ID (e.g. WEB-AUTHN-04, AD-KRB-02, CLD-AWS-IAM-07, IOT-FW-05, RT-INIT-03, LLM-PI-03) to its full methodology, references, mappings, how-to-test block, and accept criteria. Use when the user mentions a checklist ID, asks to "look up <ID>", "what does <ID> say", "show me <ID>", "find checklist items mapped to CVE-XXXX", "find items mapped to ATT&CK Tnnn", "find items by CWE-NNN", or wants to navigate the templates by stable identifier.

2026-06-09
pentest-cloud
محللو أمن المعلومات

AWS, Azure/Entra ID, and GCP penetration testing. Use when the user mentions AWS pentest, Azure pentest, GCP pentest, IAM privilege escalation, S3 misconfig, IMDSv1/v2 SSRF, managed identity abuse, ScoutSuite, Prowler, Pacu, CloudFox, ROADtools, AzureHound, MicroBurst, AADInternals, Workload Identity, OIDC trust, federated credentials, cross-account / cross-tenant chains, KMS, Lambda, Cognito, App Service, Storage Account, Key Vault, GKE/EKS/AKS, GitHub Actions OIDC trust, Terraform state, or any cloud bucket / IAM enumeration task.

2026-06-09
عرض أهم 8 من أصل 18 skills مجمعة في هذا المستودع.
عرض 1 من أصل 1 مستودعات
تم تحميل كل المستودعات